6.5

CVSS3.1

CVE-2025-60458 -

UxPlay 1.72 contains a double free vulnerability in its RTSP request handling. A specially crafted RTSP TEARDOWN request can trigger multiple calls to free() on the same memory address, potentially causing a Denial of Service.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 9, 2026, 9:58 p.m.

7.5

CVSS3.1

CVE-2025-67254 -

NagiosXI 2026R1.0.1 build 1762361101 is vulnerable to Directory Traversal in /admin/coreconfigsnapshots.php.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 15, 2026, 2:13 a.m.

9.8

CVSS3.1

CVE-2025-56333 -

An issue in Fossorial fosrl/pangolin v.1.6.2 and before allows a remote attacker to escalate privileges via the 2FA component

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 9:14 p.m.

9.8

CVSS3.1

CVE-2025-57460 -

File upload vulnerability in machsol machpanel 8.0.32 allows attacker to gain a webshell.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:14 p.m.

5.5

CVSS3.1

CVE-2025-66864 - binutils: NULL pointer dereference in d_print_comp_inner() in cp-demangle.c

An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 7:40 p.m.

9.8

CVSS3.1

CVE-2025-65570 -

A type confusion in jsish 2.0 allows incorrect control flow during execution of the OP_NEXT opcode. When an β€œinstanceof” expression uses an array element access as the left-hand operand inside a for-in loop, the instructions implementation leaves an additional array reference on the stack rather th…

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 8:04 p.m.

8.8

CVSS3.1

CVE-2025-67255 -

In NagiosXI 2026R1.0.1 build 1762361101, Dashboard parameters lack proper filtering, allowing any authenticated user to exploit a SQL Injection vulnerability.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 15, 2026, 2:14 a.m.

7.5

CVSS3.1

CVE-2025-66865 - binutils: stack overflow in d_print_comp_inner() in cp-demangle.c

An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 7:42 p.m.

7.5

CVSS3.1

CVE-2025-66863 - binutils: BinUtils: Denial of Service via crafted PE file

An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 7:38 p.m.

2.5

CVSS3.1

CVE-2025-66861 - binutils: out-of-bounds read in d_unqualified_name() in cp-demangle.c

An issue was discovered in function d_unqualified_name in file cp-demangle.c in BinUtils 2.26 allowing attackers to cause a denial of service via crafted PE file.

πŸ“… Published: Dec. 29, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 7:36 p.m.
Total resulsts: 349182
Page 2391 of 34,919
Β« previous page Β» next page
Filters